CVE-2026-43679

Summary

This issue was addressed with improved permissions checking. This issue is fixed in watchOS 26.4. An attacker with physical access to a locked Apple Watch may be able to view user contacts.

Affected Software

VendorProductVersion RangeStatus
ApplewatchOS0 < 26.4affected

Weaknesses

  • An attacker with physical access to a locked Apple Watch may be able to view user contacts

ADP Enrichment

CISA ADP Vulnrichment

  • SSVC:
  • Exploitation: none
    • Automatable: no
    • Technical Impact: partial

References